Hooker : Automated Dynamic Analysis of Android Applications

Hooker is an opensource venture for dynamic analyses of Android applications. This venture gives different devices and applications that can be use to consequently capture and adjust any API calls made by a targeted application.

It use Android Substrate system to catch these calls and total all their relevant data (parameters, returned values, …). Gathered data can either be put away in an ElasticSearch or in JSON records.

An arrangement of python scripts is additionally given to automatize the execution of an examination to gather any API calls made by a set of applications.

Android-Hooker is a proof of idea depending on the Substrate system. That implies Hooker can’t work if Substrate isn’t accurately introduced on your device. For the occasion, the creators have effectively introduced Substrate on gadgets with Android variants 4.1 and 4.2.

Hooker Technical Description

Hooker is made of multiple modules:

APK-instrumenter is an Android application that must be installed prior to the analysis on an Android device (for instance, an emulator).

hooker_xp is a python tool that can be use to control the android device and trigger the installation and stimulation of an application on it.

hooker_analysis is a python script that can be use to collect results stored in the elasticsearch database.

tools/APK-contactGenerator is an Android application that is automatically installed on the Android device by hooker_xp to inject fake contact informations.

tools/apk_retriever is a Python tool that can be use to download APKs from various online public Android markets.

tools/emulatorCreator is a collection of scripts that can be use to prepare an emulator.